Jump to content

Recommended Posts

Hi guys ... i feel like I am at a clinic :P

 

Anyway I put the malware as the title so here are the two files you asked for

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64 
Internet Explorer: 11.0.9600.16428
Run by Dave at 19:51:08 on 2014-01-06
Microsoft Windows 7 Professional   6.1.7601.1.1252.44.1033.18.16322.14195 [GMT 0:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe
C:\Program Files\ASUS\ROG GameFirst II\spd.exe
C:\Windows\system32\IProsetMonitor.exe
C:\Install\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Install\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Install\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\ASUS\ROG GameFirst II\cfosspeed.exe
C:\Install\Steam.exe
C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit = userinit.exe,
uRun: [steam] "C:\Install\Steam.exe" -silent
mRun: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{30C5B7F0-B57C-448A-AEC0-2405DE4822F4} : DHCPNameServer = 192.168.0.1
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-Run: [ROG GameFirst II] C:\Program Files\ASUS\ROG GameFirst II\cFosSpeed.exe
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 iusb3hcs;Intel® USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-1-6 20464]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2013-12-6 239616]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [2014-1-6 927232]
R2 AsRamDisk;ASUS Ram Disk Driver;C:\Windows\System32\drivers\asramdisk.sys [2014-1-6 106296]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
R2 Intel® PROSet Monitoring Service;Intel® PROSet Monitoring Service;C:\Windows\System32\IPROSetMonitor.exe [2013-1-3 183200]
R2 MBAMScheduler;MBAMScheduler;C:\Install\Malwarebytes' Anti-Malware\mbamscheduler.exe [2014-1-6 418376]
R2 MBAMService;MBAMService;C:\Install\Malwarebytes' Anti-Malware\mbamservice.exe [2014-1-6 701512]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2013-9-24 94208]
R3 e1dexpress;Intel® PRO/1000 PCI Express Network Connection Driver D;C:\Windows\System32\drivers\e1d62x64.sys [2014-1-6 496400]
R3 iusb3hub;Intel® USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-1-6 368112]
R3 iusb3xhc;Intel® USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-1-6 786416]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2014-1-6 25928]
R3 SaiH0763;SaiH0763;C:\Windows\System32\drivers\SaiH0763.sys [2008-2-15 178304]
S3 AWEAlloc;AWE Memory Allocation Driver;C:\Windows\System32\drivers\awealloc.sys [2014-1-6 21456]
S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2011-4-12 71168]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-1-6 111616]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-1-6 1255736]
.
=============== Created Last 30 ================
.
2014-01-07 06:42:05 -------- d-----w- C:\Windows\Panther
2014-01-06 23:05:59 -------- d-----w- C:\ProgramData\Samsung
2014-01-06 23:05:59 -------- d-----w- C:\Program Files (x86)\Samsung Magician
2014-01-06 23:05:47 -------- d-----w- C:\Users\Dave\AppData\Local\Programs
2014-01-06 23:00:59 -------- d-----w- C:\Program Files\CPUID
2014-01-06 23:00:01 1671552 ----a-r- C:\Windows\System32\drivers\cfosspeed6.sys
2014-01-06 22:59:53 -------- d-----w- C:\Users\Dave\AppData\Local\cFos
2014-01-06 22:59:45 -------- d-----w- C:\ProgramData\cFos
2014-01-06 22:58:29 21456 ----a-w- C:\Windows\System32\drivers\awealloc.sys
2014-01-06 22:58:29 106296 ----a-w- C:\Windows\System32\drivers\asramdisk.sys
2014-01-06 22:58:28 11832 ----a-w- C:\Windows\SysWow64\drivers\AsInsHelp64.sys
2014-01-06 22:58:28 10216 ----a-w- C:\Windows\SysWow64\drivers\AsInsHelp32.sys
2014-01-06 22:58:25 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll
2014-01-06 22:58:25 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2014-01-06 22:58:24 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2014-01-06 22:58:24 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2014-01-06 22:57:11 544568 ----a-r- C:\Windows\System32\PROUnstl.exe
2014-01-06 22:56:38 73032 ----a-w- C:\Windows\System32\e1dmsg.dll
2014-01-06 22:56:38 496400 ----a-w- C:\Windows\System32\drivers\e1d62x64.sys
2014-01-06 22:56:38 36472 ----a-w- C:\Windows\System32\NicCo36.dll
2014-01-06 22:56:37 101224 ----a-w- C:\Windows\System32\NicInstD.dll
2014-01-06 22:56:14 -------- d-sh--w- C:\Windows\Installer
2014-01-06 22:54:45 20464 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys
2014-01-06 22:54:40 786416 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys
2014-01-06 22:54:39 368112 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys
2014-01-06 22:52:49 53248 ----a-r- C:\Windows\SysWow64\CSVer.dll
2014-01-06 22:52:35 -------- d-----w- C:\Intel
2014-01-06 22:51:03 16896 ----a-w- C:\Windows\AsTaskSched.dll
2014-01-06 22:51:03 -------- d-----w- C:\Windows\Chipset
2014-01-06 22:51:01 296320 ----a-w- C:\Windows\System32\drivers\volsnap.sys
2014-01-06 19:30:59 -------- d-----w- C:\Users\Dave\AppData\Roaming\Malwarebytes
2014-01-06 19:30:46 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-01-06 19:30:46 -------- d-----w- C:\ProgramData\Malwarebytes
2014-01-06 19:04:54 -------- d-----w- C:\dumps
2014-01-06 19:04:45 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2014-01-06 19:04:45 -------- d-----w- C:\Install
2014-01-06 19:00:35 67072 ----a-w- C:\Windows\splwow64.exe
2014-01-06 19:00:35 559104 ----a-w- C:\Windows\System32\spoolsv.exe
2014-01-06 19:00:35 2871808 ----a-w- C:\Windows\explorer.exe
2014-01-06 19:00:35 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe
2014-01-06 18:57:36 8199504 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2014-01-06 18:57:35 10315576 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{11293358-77EE-4408-BDB2-B5EBCB4385A8}\mpengine.dll
2014-01-06 18:54:24 99840 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2014-01-06 18:54:24 7808 ----a-w- C:\Windows\System32\drivers\usbd.sys
2014-01-06 18:54:24 52736 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2014-01-06 18:54:24 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2014-01-06 18:54:24 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys
2014-01-06 18:54:24 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2014-01-06 18:54:24 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2014-01-06 17:44:55 -------- d-----w- C:\Windows\Migration
2014-01-06 17:33:56 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2014-01-06 17:33:56 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2014-01-06 17:33:56 12625920 ----a-w- C:\Windows\System32\wmploc.DLL
2014-01-06 17:33:55 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL
2014-01-06 17:29:19 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2014-01-06 17:20:58 294912 ----a-w- C:\Windows\System32\browserchoice.exe
2014-01-06 17:16:17 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-06 17:15:59 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2014-01-06 17:15:59 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2014-01-06 17:15:52 -------- d-----w- C:\Windows\SysWow64\Wat
2014-01-06 17:15:52 -------- d-----w- C:\Windows\System32\Wat
2014-01-06 16:51:48 -------- d-----w- C:\Windows\System32\MRT
2014-01-06 16:51:36 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-01-06 16:51:36 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-01-06 16:51:36 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-01-06 16:45:59 335360 ----a-w- C:\Windows\System32\msieftp.dll
2014-01-06 16:44:59 903168 ----a-w- C:\Windows\SysWow64\certutil.exe
2014-01-06 16:43:30 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys
2014-01-06 16:43:17 461312 ----a-w- C:\Windows\System32\scavengeui.dll
2014-01-06 16:43:16 983488 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-01-06 16:43:16 265064 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2014-01-06 16:43:16 144384 ----a-w- C:\Windows\System32\cdd.dll
2014-01-06 16:42:56 77312 ----a-w- C:\Windows\System32\packager.dll
2014-01-06 16:42:56 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-01-06 16:42:47 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2014-01-06 16:42:47 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-01-06 16:42:47 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2014-01-06 16:40:24 -------- d-----w- C:\Users\Dave\AppData\Local\ATI
2014-01-06 16:40:21 0 ----a-w- C:\Windows\ativpsrm.bin
2014-01-06 16:39:52 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies
2014-01-06 16:39:35 -------- d-----w- C:\Program Files\Common Files\ATI Technologies
2014-01-06 16:27:38 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2014-01-06 16:27:37 99840 ----a-w- C:\Windows\System32\wudriver.dll
2014-01-06 16:27:36 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-01-06 16:27:36 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2014-01-06 16:15:10 -------- d-----w- C:\Users\Dave\AppData\Local\Diagnostics
2014-01-06 15:45:36 -------- d-----w- C:\ProgramData\AMD
2014-01-06 15:45:36 -------- d-----w- C:\Program Files (x86)\AMD AVT
2014-01-06 15:45:24 -------- d-----w- C:\Program Files\AMD
2014-01-06 15:45:19 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2014-01-06 15:44:02 -------- d-----w- C:\ProgramData\Package Cache
2014-01-06 15:43:53 -------- d-----w- C:\Program Files\ATI Technologies
2014-01-06 15:43:45 -------- d-----w- C:\Program Files\ATI
2014-01-06 15:43:19 -------- d-----w- C:\AMD
2014-01-06 15:31:37 -------- d-----w- C:\Users\Dave\AppData\Local\Google
2014-01-06 15:29:06 -------- d-----w- C:\Users\Dave\AppData\Roaming\AsRamdisk
2014-01-06 15:27:55 -------- d-----w- C:\Users\Dave\AppData\Local\Deployment
2014-01-06 15:27:55 -------- d-----w- C:\Users\Dave\AppData\Local\Apps
.
==================== Find3M  ====================
.
2014-01-06 17:16:17 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-06 22:08:46 157736 ----a-w- C:\Windows\System32\amdhcp64.dll
2013-12-06 22:08:22 142304 ----a-w- C:\Windows\SysWow64\amdhcp32.dll
2013-12-06 22:07:36 78432 ----a-w- C:\Windows\System32\atimpc64.dll
2013-12-06 22:07:36 78432 ----a-w- C:\Windows\System32\amdpcom64.dll
2013-12-06 22:07:14 71704 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2013-12-06 22:07:14 71704 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2013-12-06 22:04:10 143304 ----a-w- C:\Windows\System32\atiuxp64.dll
2013-12-06 22:03:46 126336 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2013-12-06 22:03:00 115512 ----a-w- C:\Windows\System32\atiu9p64.dll
2013-12-06 22:02:38 98496 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2013-12-06 22:01:52 1318552 ----a-w- C:\Windows\System32\aticfx64.dll
2013-12-06 22:01:04 1100216 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2013-12-06 22:00:16 9753752 ----a-w- C:\Windows\System32\atidxx64.dll
2013-12-06 21:59:50 8406024 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2013-12-06 21:59:00 8287008 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2013-12-06 21:58:10 6630232 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2013-12-06 21:57:20 8927704 ----a-w- C:\Windows\System32\atiumd6a.dll
2013-12-06 21:56:54 7751920 ----a-w- C:\Windows\System32\atiumd64.dll
2013-12-06 21:52:14 13207552 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2013-12-06 21:38:52 230912 ----a-w- C:\Windows\System32\clinfo.exe
2013-12-06 21:38:40 1187342 ----a-w- C:\Windows\System32\amdocl_as64.exe
2013-12-06 21:38:40 1061902 ----a-w- C:\Windows\System32\amdocl_ld64.exe
2013-12-06 21:38:38 995342 ----a-w- C:\Windows\SysWow64\amdocl_as32.exe
2013-12-06 21:38:38 798734 ----a-w- C:\Windows\SysWow64\amdocl_ld32.exe
2013-12-06 21:38:34 99840 ----a-w- C:\Windows\System32\OpenVideo64.dll
2013-12-06 21:38:28 83968 ----a-w- C:\Windows\SysWow64\OpenVideo.dll
2013-12-06 21:38:22 86528 ----a-w- C:\Windows\System32\OVDecode64.dll
2013-12-06 21:38:18 73728 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2013-12-06 21:37:58 29382144 ----a-w- C:\Windows\System32\amdocl64.dll
2013-12-06 21:35:36 24860160 ----a-w- C:\Windows\SysWow64\amdocl.dll
2013-12-06 21:33:28 63488 ----a-w- C:\Windows\System32\OpenCL.dll
2013-12-06 21:33:24 57344 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2013-12-06 21:26:44 129536 ----a-w- C:\Windows\System32\coinst_13.251.dll
2013-12-06 21:16:40 26352128 ----a-w- C:\Windows\System32\atio6axx.dll
2013-12-06 21:13:02 368640 ----a-w- C:\Windows\System32\atiapfxx.exe
2013-12-06 21:12:52 62464 ----a-w- C:\Windows\System32\aticalrt64.dll
2013-12-06 21:12:50 52224 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2013-12-06 21:12:42 55808 ----a-w- C:\Windows\System32\aticalcl64.dll
2013-12-06 21:12:40 49152 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2013-12-06 21:12:26 15716352 ----a-w- C:\Windows\System32\aticaldd64.dll
2013-12-06 21:09:18 14302208 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2013-12-06 20:58:50 22157824 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2013-12-06 20:53:18 442368 ----a-w- C:\Windows\System32\atidemgy.dll
2013-12-06 20:53:10 31232 ----a-w- C:\Windows\System32\atimuixx.dll
2013-12-06 20:53:04 588288 ----a-w- C:\Windows\System32\atieclxx.exe
2013-12-06 20:52:10 239616 ----a-w- C:\Windows\System32\atiesrxx.exe
2013-12-06 20:50:36 190976 ----a-w- C:\Windows\System32\atitmm64.dll
2013-12-06 20:22:54 96256 ----a-w- C:\Windows\System32\amdave64.dll
2013-12-06 20:22:48 90112 ----a-w- C:\Windows\SysWow64\amdave32.dll
2013-12-06 20:22:42 1144320 ----a-w- C:\Windows\System32\atiadlxx.dll
2013-12-06 20:22:38 89088 ----a-w- C:\Windows\System32\atisamu64.dll
2013-12-06 20:22:34 80896 ----a-w- C:\Windows\SysWow64\atisamu32.dll
2013-12-06 20:22:28 825344 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2013-12-06 20:22:12 74752 ----a-w- C:\Windows\System32\atig6pxx.dll
2013-12-06 20:22:08 69632 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2013-12-06 20:22:08 69632 ----a-w- C:\Windows\System32\atiglpxx.dll
2013-12-06 20:22:04 100352 ----a-w- C:\Windows\System32\atig6txx.dll
2013-12-06 20:21:54 96768 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2013-12-06 20:21:44 626176 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2013-12-06 20:18:12 43520 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2013-12-06 16:49:18 51200 ----a-w- C:\Windows\System32\kdbsdk64.dll
2013-12-06 16:44:26 38912 ----a-w- C:\Windows\SysWow64\kdbsdk32.dll
2013-11-26 12:25:52 267936 ------w- C:\Windows\System32\MpSigStub.exe
2013-11-26 10:19:07 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2013-11-26 10:18:23 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2013-11-26 09:48:07 66048 ----a-w- C:\Windows\System32\iesetup.dll
2013-11-26 09:46:25 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2013-11-26 09:23:02 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2013-11-26 09:18:39 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
2013-11-26 09:18:09 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
2013-11-26 09:16:57 708608 ----a-w- C:\Windows\System32\jscript9diag.dll
2013-11-26 08:35:02 5769216 ----a-w- C:\Windows\System32\jscript9.dll
2013-11-26 08:28:16 553472 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2013-11-26 08:16:12 4243968 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-11-26 08:02:16 1995264 ----a-w- C:\Windows\System32\inetcpl.cpl
2013-11-26 07:32:06 1928192 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2013-11-26 07:07:57 2334208 ----a-w- C:\Windows\System32\wininet.dll
2013-11-26 06:33:33 1820160 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-11-23 18:26:20 417792 ----a-w- C:\Windows\SysWow64\WMPhoto.dll
2013-11-23 17:47:34 465920 ----a-w- C:\Windows\System32\WMPhoto.dll
2013-11-12 02:23:09 2048 ----a-w- C:\Windows\System32\tzres.dll
2013-11-12 02:07:29 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2013-10-30 02:19:52 301568 ----a-w- C:\Windows\SysWow64\msieftp.dll
2013-10-30 01:24:31 3155968 ----a-w- C:\Windows\System32\win32k.sys
2013-10-19 02:18:57 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2013-10-19 01:36:59 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2013-10-12 02:32:04 150016 ----a-w- C:\Windows\System32\wshom.ocx
2013-10-12 02:31:04 202752 ----a-w- C:\Windows\System32\scrrun.dll
2013-10-12 02:30:42 830464 ----a-w- C:\Windows\System32\nshwfp.dll
2013-10-12 02:29:21 859648 ----a-w- C:\Windows\System32\IKEEXT.DLL
2013-10-12 02:29:08 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2013-10-12 02:04:36 121856 ----a-w- C:\Windows\SysWow64\wshom.ocx
2013-10-12 02:03:31 163840 ----a-w- C:\Windows\SysWow64\scrrun.dll
2013-10-12 02:03:08 656896 ----a-w- C:\Windows\SysWow64\nshwfp.dll
2013-10-12 02:01:25 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL
2013-10-12 01:33:39 156160 ----a-w- C:\Windows\System32\cscript.exe
2013-10-12 01:33:26 168960 ----a-w- C:\Windows\System32\wscript.exe
2013-10-12 01:15:48 141824 ----a-w- C:\Windows\SysWow64\wscript.exe
2013-10-12 01:15:48 126976 ----a-w- C:\Windows\SysWow64\cscript.exe
.
============= FINISH: 19:51:14.02 ===============
 
 
 
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional 
Boot Device: \Device\HarddiskVolume1
Install Date: 06/01/2014 22:48:04
System Uptime: 06/01/2014 19:40:12 (0 hours ago)
.
Motherboard: ASUSTeK COMPUTER INC. |  | MAXIMUS VI HERO
Processor: Intel® Core i5-4670K CPU @ 3.40GHz | SOCKET 1150 | 3401/100mhz
.
==== Disk Partitions =========================
.
.
==== Installed Programs ======================
.
AMD Accelerated Video Transcoding
AMD Catalyst Control Center
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Media Foundation Decoders
AMD Wireless Display v3.0
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CPUID ROG CPU-Z 1.65
DayZ
Google Chrome
Google Update Helper
Intel® Network Connections 18.1.59.0
Intel® USB 3.0 eXtensible Host Controller Driver
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft .NET Framework 4.5.1
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
ROG GameFirst II v8.03
ROG RAMDisk
Steam
VC_CRT_x64
.
==== End Of File ===========================
 

 

Link to post
Share on other sites

Hello and post-32477-1261866970.gif

 

P2P/Piracy Warning:

 

   

If you're using Peer 2 Peer software such as uTorrent, BitTorrent or similar you must either fully uninstall them or completely disable them from running while being assisted here.

Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.

If you have illegal/cracked software, cracks, keygens etc. on the system, please remove or uninstall them now and read the policy on Piracy.

 

Download AdwCleaner by Xplode from here: http://www.bleepingcomputer.com/download/adwcleaner/ and save to your Desktop.

 

  • Double click on AdwCleaner.exe to run the tool.
  • Vista/Windows 7/8 users right-click and select Run As Administrator
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • When it's done you'll see: Pending: Uncheck any elements you don't want removed.
  • Now click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • Look over the log especially under Files/Folders for any program you want to save.
  • If there's a program you want to save, just uncheck it from AdwCleaner.
  • If you're not sure, post the log for review.
  • If you're ready to clean it all up.....click the Clean button.
  • After rebooting, a logfile report (AdwCleaner[s0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
  • Items that are deleted are moved to the Quarantine Folder: C:\AdwCleaner\Quarantine
  • To restore an item that has been deleted (if necessary):
  • Go to Tools > Quarantine Manager > check what you want restored > now click on Restore.

 

Next,

 

Run Malwarebytes,  Open > Settings Tab > Scanner Settings > Under action for PUP > Select: Show in Results List and Check for removal.

Please Update and run a Quick scan

Make sure that everything is checked, and click Remove Selected on any found items.

 

Post the produced log...

 

Next,

 

Download Farbar Recovery Scan Tool and save it to your desktop.

 

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

 

Post those logs in next reply...

 

Kevin

Link to post
Share on other sites

Post is too long when I try to post the log from frst - I tried it on it's own but still too long :(

 

# AdwCleaner v3.016 - Report created 06/01/2014 at 20:09:52
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Dave - DAVE-PC
# Running from : C:\Users\Dave\Downloads\AdwCleaner.exe
# Option : Clean
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\IM
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v11.0.9600.16428
 
 
-\\ Google Chrome v31.0.1650.63
 
[ File : C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
Deleted : homepage
Deleted : urls_to_restore_on_startup
 
*************************
 
AdwCleaner[R0].txt - [1284 octets] - [06/01/2014 20:08:17]
AdwCleaner[s0].txt - [917 octets] - [06/01/2014 20:09:52]
 
########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [976 octets] ##########
 
 
Malwarebytes Anti-Malware (PRO) 1.75.0.1300
www.malwarebytes.org
 
Database version: v2014.01.06.07
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
Dave :: DAVE-PC [administrator]
 
Protection: Enabled
 
06/01/2014 20:23:56
mbam-log-2014-01-06 (20-23-56).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 204183
Time elapsed: 44 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 
Link to post
Share on other sites

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014

Ran by Dave (administrator) on DAVE-PC on 06-01-2014 20:15:25

Running from C:\Users\Dave\Downloads

Windows 7 Professional Service Pack 1 (X64) OS Language: English(US)

Internet Explorer Version 11

Boot Mode: Normal

 

==================== Processes (Whitelisted) =================

 

(AMD) C:\Windows\System32\atiesrxx.exe

(AMD) C:\Windows\System32\atieclxx.exe

() C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe

(cFos Software GmbH) C:\Program Files\ASUS\ROG GameFirst II\cfosspeed.exe

(Valve Corporation) C:\Install\Steam.exe

(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe

(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

(cFos Software GmbH) C:\Program Files\ASUS\ROG GameFirst II\spd.exe

(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe

(Malwarebytes Corporation) C:\Install\Malwarebytes' Anti-Malware\mbamscheduler.exe

(Malwarebytes Corporation) C:\Install\Malwarebytes' Anti-Malware\mbamservice.exe

(Malwarebytes Corporation) C:\Install\Malwarebytes' Anti-Malware\mbamgui.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

(Malwarebytes Corporation) C:\Install\Malwarebytes' Anti-Malware\mbam.exe

(Microsoft Corporation) \\?\C:\Windows\system32\wbem\WMIADAP.EXE

 

 

==================== Registry (Whitelisted) ==================

 

HKLM\...\Run: [ROG GameFirst II] - C:\Program Files\ASUS\ROG GameFirst II\cfosspeed.exe [3064232 2012-08-09] (cFos Software GmbH)

HKLM-x32\...\Run: [uSB3MON] - C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)

HKLM-x32\...\Run: [startCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.)

HKCU\...\Run: [steam] - C:\Install\Steam.exe [1823656 2013-12-11] (Valve Corporation)

MountPoints2: {ce014fc7-7723-11e3-b047-806e6f6e6963} - D:\.\Bin\ASSETUP.exe

 

==================== Internet (Whitelisted) ====================

 

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xBA031982FC0ACF01

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

 

Chrome: 

=======



CHR DefaultSearchKeyword: google.co.uk

CHR Extension: (Google Docs) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0

CHR Extension: (Google Drive) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0

CHR Extension: (YouTube) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0

CHR Extension: (Google Search) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0

CHR Extension: (Google Wallet) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0

CHR Extension: (Gmail) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1

 

==================== Services (Whitelisted) =================

 

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] ()

R2 cFosSpeedS; C:\Program Files\ASUS\ROG GameFirst II\spd.exe [860072 2012-08-09] (cFos Software GmbH)

R2 MBAMScheduler; C:\Install\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)

R2 MBAMService; C:\Install\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)

 

==================== Drivers (Whitelisted) ====================

 

R2 ASInsHelp; C:\Windows\SysWow64\drivers\AsInsHelp64.sys [11832 2013-01-08] ()

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-21] ()

R2 AsRamDisk; C:\Windows\System32\DRIVERS\asramdisk.sys [106296 2013-04-09] (Asus)

S3 AWEAlloc; C:\Windows\System32\DRIVERS\awealloc.sys [21456 2012-12-20] (Olof Lagerkvist)

R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [496400 2013-02-27] (Intel Corporation)

R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)

R3 SaiH0763; C:\Windows\System32\DRIVERS\SaiH0763.sys [178304 2008-02-15] (Saitek)

S3 cpuz136; \??\C:\Users\Dave\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [x]

 

==================== NetSvcs (Whitelisted) ===================

 

 

==================== One Month Created Files and Folders ========

 

2014-01-07 06:42 - 2014-01-06 22:48 - 00000000 ____D C:\Windows\Panther

2014-01-06 23:05 - 2014-01-07 00:08 - 00000000 ____D C:\ProgramData\Samsung

2014-01-06 23:05 - 2014-01-07 00:08 - 00000000 ____D C:\Program Files (x86)\Samsung Magician

2014-01-06 23:05 - 2014-01-06 18:58 - 00058016 _____ C:\Users\Dave\AppData\Local\GDIPFONTCACHEV1.DAT

2014-01-06 23:02 - 2014-01-06 23:02 - 00000000 ____D C:\ProgramData\Adobe

2014-01-06 23:02 - 2014-01-06 23:02 - 00000000 ____D C:\Program Files (x86)\Adobe

2014-01-06 23:00 - 2014-01-06 23:00 - 00000901 _____ C:\Users\Public\Desktop\CPUID ROG CPU-Z.lnk

2014-01-06 23:00 - 2014-01-06 16:25 - 00000000 ____D C:\Program Files\CPUID

2014-01-06 23:00 - 2012-04-27 07:40 - 01671552 ____R (cFos Software GmbH) C:\Windows\system32\Drivers\cfosspeed6.sys

2014-01-06 22:59 - 2014-01-06 22:59 - 00002072 _____ C:\Users\Dave\Desktop\ROG GameFirst II.lnk

2014-01-06 22:59 - 2014-01-06 22:59 - 00001363 _____ C:\Users\Dave\Desktop\ROG GameFirst II Features.lnk

2014-01-06 22:59 - 2014-01-06 16:25 - 00000000 ____D C:\Users\Dave\AppData\Local\cFos

2014-01-06 22:59 - 2014-01-06 16:25 - 00000000 ____D C:\ProgramData\cFos

2014-01-06 22:58 - 2014-01-06 22:58 - 00001952 _____ C:\Users\Public\Desktop\ROG RAMDisk 2.00.03.lnk

2014-01-06 22:58 - 2014-01-06 16:25 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

2014-01-06 22:58 - 2013-04-09 14:13 - 00106296 _____ (Asus) C:\Windows\system32\Drivers\asramdisk.sys

2014-01-06 22:58 - 2013-01-08 14:17 - 00011832 _____ C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys

2014-01-06 22:58 - 2013-01-08 14:17 - 00010216 _____ C:\Windows\SysWOW64\Drivers\AsInsHelp32.sys

2014-01-06 22:58 - 2012-12-20 16:45 - 00021456 _____ (Olof Lagerkvist) C:\Windows\system32\Drivers\awealloc.sys

2014-01-06 22:57 - 2014-01-06 16:26 - 00000000 ____D C:\Program Files\Intel

2014-01-06 22:57 - 2013-02-07 00:17 - 00544568 ____R (Intel Corporation) C:\Windows\system32\PROUnstl.exe

2014-01-06 22:57 - 2006-01-12 22:52 - 00001904 _____ C:\Windows\system32\SetupBD.din

2014-01-06 22:56 - 2013-02-27 00:23 - 00496400 _____ (Intel Corporation) C:\Windows\system32\Drivers\e1d62x64.sys

2014-01-06 22:56 - 2012-12-06 11:34 - 00073032 _____ (Intel Corporation) C:\Windows\system32\e1dmsg.dll

2014-01-06 22:56 - 2012-11-14 12:01 - 00101224 _____ (Intel Corporation) C:\Windows\system32\NicInstD.dll

2014-01-06 22:56 - 2012-01-06 21:03 - 00003114 _____ C:\Windows\system32\e1d62x64.din

2014-01-06 22:56 - 2009-05-26 17:05 - 00036472 _____ (Intel Corporation) C:\Windows\system32\NicCo36.dll

2014-01-06 22:54 - 2014-01-06 22:54 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf

2014-01-06 22:54 - 2013-04-26 02:24 - 00786416 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys

2014-01-06 22:54 - 2013-04-26 02:24 - 00368112 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys

2014-01-06 22:54 - 2013-04-26 02:24 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys

2014-01-06 22:52 - 2014-01-06 22:54 - 00000000 ____D C:\Program Files (x86)\Intel

2014-01-06 22:52 - 2014-01-06 22:52 - 00000000 ____D C:\Windows\System32\Tasks\ASUS

2014-01-06 22:52 - 2014-01-06 22:52 - 00000000 ____D C:\Intel

2014-01-06 22:52 - 2013-02-27 07:37 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll

2014-01-06 22:51 - 2014-01-06 22:51 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll

2014-01-06 22:51 - 2014-01-06 22:51 - 00000000 ____D C:\Windows\Chipset

2014-01-06 22:51 - 2011-02-25 06:25 - 00296320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys

2014-01-06 22:50 - 2014-01-06 22:50 - 00000000 ____H C:\Windows\system32\Drivers\MsftWdf_user_01_11_00.Wdf

2014-01-06 22:50 - 2014-01-06 22:50 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf

2014-01-06 22:50 - 2014-01-06 16:25 - 00000000 ____D C:\Program Files\ASUS

2014-01-06 22:50 - 2014-01-06 16:25 - 00000000 ____D C:\Program Files (x86)\ASUS

2014-01-06 22:50 - 2012-08-21 18:54 - 00015232 ____R C:\Windows\SysWOW64\Drivers\AsIO.sys

2014-01-06 22:50 - 2012-08-17 02:57 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll

2014-01-06 22:50 - 2012-07-26 03:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll

2014-01-06 22:50 - 2012-07-26 03:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe

2014-01-06 22:50 - 2012-07-26 03:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll

2014-01-06 22:50 - 2012-07-26 03:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll

2014-01-06 22:50 - 2012-07-26 03:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll

2014-01-06 22:50 - 2012-07-26 02:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys

2014-01-06 22:50 - 2012-07-26 02:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys

2014-01-06 22:50 - 2012-06-02 14:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf

2014-01-06 22:50 - 2010-06-28 16:41 - 00028672 ____R (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll

2014-01-06 22:49 - 2014-01-06 22:59 - 00050504 _____ C:\Windows\Ascd_tmp.ini

2014-01-06 22:49 - 2014-01-06 22:52 - 00001769 _____ C:\Windows\Language_trs.ini

2014-01-06 22:48 - 2014-01-06 22:48 - 00000020 ___SH C:\Users\Dave\ntuser.ini

2014-01-06 22:48 - 2014-01-06 22:48 - 00000000 __SHD C:\Recovery

2014-01-06 22:48 - 2014-01-06 22:48 - 00000000 ____D C:\Users\Dave\AppData\Local\VirtualStore

2014-01-06 22:48 - 2014-01-06 18:58 - 00000000 ___RD C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

2014-01-06 22:48 - 2014-01-06 18:58 - 00000000 ___RD C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

2014-01-06 22:48 - 2014-01-06 17:19 - 00001417 _____ C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

2014-01-06 22:48 - 2014-01-06 16:26 - 00000000 ____D C:\Users\Dave

2014-01-06 22:48 - 2009-07-14 04:54 - 00000000 ___RD C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

2014-01-06 22:48 - 2009-07-14 04:49 - 00000000 ___RD C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

2014-01-06 22:47 - 2014-01-06 20:10 - 01741645 _____ C:\Windows\WindowsUpdate.log

2014-01-06 22:42 - 2014-01-06 22:42 - 00001355 _____ C:\Windows\TSSysprep.log

2014-01-06 20:15 - 2014-01-06 20:15 - 00005902 _____ C:\Users\Dave\Downloads\FRST.txt

2014-01-06 20:15 - 2014-01-06 20:15 - 00000000 ____D C:\FRST

2014-01-06 20:14 - 2014-01-06 20:15 - 01931762 _____ (Farbar) C:\Users\Dave\Downloads\FRST64.exe

2014-01-06 20:11 - 2014-01-06 20:11 - 01233962 _____ C:\Users\Dave\Downloads\AdwCleaner (1).exe

2014-01-06 20:08 - 2014-01-06 20:09 - 00000000 ____D C:\AdwCleaner

2014-01-06 20:07 - 2014-01-06 20:07 - 01233962 _____ C:\Users\Dave\Downloads\AdwCleaner.exe

2014-01-06 19:51 - 2014-01-06 19:51 - 00688992 _____ (Swearware) C:\Users\Dave\Downloads\dds.com

2014-01-06 19:51 - 2014-01-06 19:51 - 00020516 _____ C:\Users\Dave\Desktop\dds.txt

2014-01-06 19:51 - 2014-01-06 19:51 - 00002019 _____ C:\Users\Dave\Desktop\attach.txt

2014-01-06 19:50 - 2014-01-06 19:51 - 00688992 ____R (Swearware) C:\Users\Dave\Downloads\dds.scr

2014-01-06 19:45 - 2014-01-06 19:45 - 00754944 _____ C:\Users\Dave\Downloads\cc_setup.exe

2014-01-06 19:45 - 2014-01-06 19:45 - 00001053 _____ C:\Users\Dave\Desktop\Continue CCleaner Installation.lnk

2014-01-06 19:30 - 2014-01-06 19:30 - 00000830 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2014-01-06 19:30 - 2014-01-06 19:30 - 00000000 ____D C:\Users\Dave\AppData\Roaming\Malwarebytes

2014-01-06 19:30 - 2014-01-06 19:30 - 00000000 ____D C:\ProgramData\Malwarebytes

2014-01-06 19:30 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys

2014-01-06 19:25 - 2014-01-06 19:26 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\Dave\Downloads\mbam-setup-1.75.0.1300.exe

2014-01-06 19:16 - 2014-01-06 19:16 - 00000204 _____ C:\Users\Dave\Desktop\DayZ.url

2014-01-06 19:16 - 2014-01-06 19:16 - 00000000 ____D C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam

2014-01-06 19:04 - 2014-01-06 20:11 - 00000000 ____D C:\Install

2014-01-06 19:04 - 2014-01-06 19:04 - 00000604 _____ C:\Users\Public\Desktop\Steam.lnk

2014-01-06 19:04 - 2014-01-06 19:04 - 00000000 ____D C:\dumps

2014-01-06 19:03 - 2014-01-06 19:03 - 00000000 ____D C:\Users\Dave\Downloads\Steam_TSV1QNOG

2014-01-06 19:00 - 2012-02-11 06:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe

2014-01-06 19:00 - 2012-02-11 06:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe

2014-01-06 19:00 - 2011-02-25 06:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe

2014-01-06 19:00 - 2011-02-25 05:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe

2014-01-06 18:54 - 2013-09-04 12:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys

2014-01-06 18:54 - 2013-09-04 12:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys

2014-01-06 18:54 - 2013-09-04 12:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys

2014-01-06 18:54 - 2013-09-04 12:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys

2014-01-06 18:54 - 2013-09-04 12:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys

2014-01-06 18:54 - 2013-09-04 12:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys

2014-01-06 18:54 - 2013-09-04 12:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys

2014-01-06 18:49 - 2013-11-23 18:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll

2014-01-06 18:49 - 2013-11-23 17:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll

2014-01-06 18:49 - 2013-04-17 07:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll

2014-01-06 18:49 - 2013-04-17 06:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll

2014-01-06 18:49 - 2011-03-11 06:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys

2014-01-06 18:49 - 2011-03-11 06:41 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys

2014-01-06 18:49 - 2011-03-11 06:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys

2014-01-06 18:49 - 2011-03-11 06:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys

2014-01-06 18:49 - 2011-03-11 06:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys

2014-01-06 18:49 - 2011-03-11 06:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys

2014-01-06 18:49 - 2011-03-11 06:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll

2014-01-06 18:49 - 2011-03-11 06:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe

2014-01-06 18:49 - 2011-03-11 05:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll

2014-01-06 18:49 - 2011-03-11 05:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe

2014-01-06 18:49 - 2011-03-11 04:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS

2014-01-06 17:44 - 2013-11-26 11:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll

2014-01-06 17:44 - 2013-11-26 10:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb

2014-01-06 17:44 - 2013-11-26 10:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll

2014-01-06 17:44 - 2013-11-26 10:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2014-01-06 17:44 - 2013-11-26 09:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll

2014-01-06 17:44 - 2013-11-26 09:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll

2014-01-06 17:44 - 2013-11-26 09:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll

2014-01-06 17:44 - 2013-11-26 09:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll

2014-01-06 17:44 - 2013-11-26 09:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll

2014-01-06 17:44 - 2013-11-26 09:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2014-01-06 17:44 - 2013-11-26 09:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll

2014-01-06 17:44 - 2013-11-26 09:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe

2014-01-06 17:44 - 2013-11-26 09:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe

2014-01-06 17:44 - 2013-11-26 09:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll

2014-01-06 17:44 - 2013-11-26 08:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe

2014-01-06 17:44 - 2013-11-26 08:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2014-01-06 17:44 - 2013-11-26 08:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll

2014-01-06 17:44 - 2013-11-26 08:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll

2014-01-06 17:44 - 2013-11-26 08:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll

2014-01-06 17:44 - 2013-11-26 08:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll

2014-01-06 17:44 - 2013-11-26 08:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2014-01-06 17:44 - 2013-11-26 08:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl

2014-01-06 17:44 - 2013-11-26 07:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll

2014-01-06 17:44 - 2013-11-26 07:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl

2014-01-06 17:44 - 2013-11-26 07:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2014-01-06 17:44 - 2013-11-26 07:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll

2014-01-06 17:44 - 2013-11-26 06:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll

2014-01-06 17:44 - 2013-11-26 06:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll

2014-01-06 17:44 - 2013-11-26 06:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll

2014-01-06 17:44 - 2013-11-26 06:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2014-01-06 17:44 - 2013-11-26 06:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2014-01-06 17:33 - 2013-05-10 05:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll

2014-01-06 17:33 - 2013-05-10 05:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL

2014-01-06 17:33 - 2013-05-10 04:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL

2014-01-06 17:33 - 2013-05-10 04:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll

2014-01-06 17:20 - 2010-02-23 08:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe

2014-01-06 17:19 - 2014-01-06 17:19 - 00000000 ____D C:\Users\Dave\AppData\Roaming\Adobe

2014-01-06 17:18 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE

2014-01-06 17:17 - 2014-01-06 17:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys

2014-01-06 17:17 - 2014-01-06 17:17 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat

2014-01-06 17:17 - 2014-01-06 17:17 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat

2014-01-06 17:17 - 2014-01-06 17:17 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec

2014-01-06 17:17 - 2014-01-06 17:17 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec

2014-01-06 17:17 - 2014-01-06 17:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx

2014-01-06 17:17 - 2014-01-06 17:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx

2014-01-06 17:17 - 2014-01-06 17:17 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe

2014-01-06 17:16 - 2014-01-06 17:16 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll

2014-01-06 17:16 - 2014-01-06 17:16 -

Link to post
Share on other sites

2014-01-06 17:16 - 2014-01-06 17:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll

2014-01-06 17:15 - 2014-01-06 17:18 - 00013655 _____ C:\Windows\IE11_main.log

2014-01-06 17:15 - 2014-01-06 17:15 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll

2014-01-06 17:15 - 2014-01-06 17:15 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll

2014-01-06 16:51 - 2014-01-06 16:51 - 00000000 ____D C:\Windows\system32\MRT

2014-01-06 16:51 - 2013-12-01 14:42 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

2014-01-06 16:51 - 2012-03-01 06:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys

2014-01-06 16:51 - 2012-03-01 06:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll

2014-01-06 16:51 - 2012-03-01 05:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll

2014-01-06 16:46 - 2013-11-12 02:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll

2014-01-06 16:46 - 2013-11-12 02:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll

2014-01-06 16:46 - 2013-10-05 20:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll

2014-01-06 16:46 - 2013-10-05 19:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll

2014-01-06 16:46 - 2013-10-04 02:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll

2014-01-06 16:46 - 2013-10-04 02:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll

2014-01-06 16:46 - 2013-10-04 02:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll

2014-01-06 16:46 - 2013-10-04 01:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll

2014-01-06 16:46 - 2013-10-04 01:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll

2014-01-06 16:46 - 2013-10-04 01:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll

2014-01-06 16:46 - 2013-09-25 02:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys

2014-01-06 16:46 - 2013-09-25 02:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys

2014-01-06 16:46 - 2013-09-25 02:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll

2014-01-06 16:46 - 2013-09-25 02:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll

2014-01-06 16:46 - 2013-09-25 02:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll

2014-01-06 16:46 - 2013-09-25 02:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll

2014-01-06 16:46 - 2013-09-25 02:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll

2014-01-06 16:46 - 2013-09-25 02:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll

2014-01-06 16:46 - 2013-09-25 01:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll

2014-01-06 16:46 - 2013-09-25 01:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll

2014-01-06 16:46 - 2013-09-25 01:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll

2014-01-06 16:46 - 2013-09-25 01:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll

2014-01-06 16:46 - 2013-09-25 01:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe

2014-01-06 16:46 - 2013-08-02 02:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll

2014-01-06 16:46 - 2013-08-02 02:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll

2014-01-06 16:46 - 2013-08-02 02:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 02:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll

2014-01-06 16:46 - 2013-08-02 01:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 01:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe

2014-01-06 16:46 - 2013-08-02 00:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe

2014-01-06 16:46 - 2013-08-02 00:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 00:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 00:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll

2014-01-06 16:46 - 2013-08-02 00:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll

2014-01-06 16:46 - 2013-07-26 02:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll

2014-01-06 16:46 - 2013-07-26 02:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll

2014-01-06 16:46 - 2013-07-26 01:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll

2014-01-06 16:46 - 2013-07-26 01:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll

2014-01-06 16:46 - 2013-07-12 10:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys

2014-01-06 16:46 - 2013-07-12 10:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys

2014-01-06 16:46 - 2013-07-09 05:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll

2014-01-06 16:46 - 2013-07-09 05:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll

2014-01-06 16:46 - 2013-07-09 05:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll

2014-01-06 16:46 - 2013-07-09 04:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll

2014-01-06 16:46 - 2013-07-09 04:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll

2014-01-06 16:46 - 2013-07-09 04:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll

2014-01-06 16:46 - 2013-07-04 12:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll

2014-01-06 16:46 - 2013-07-04 12:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll

2014-01-06 16:46 - 2013-07-04 12:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys

2014-01-06 16:46 - 2013-07-04 11:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll

2014-01-06 16:46 - 2013-07-04 11:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll

2014-01-06 16:46 - 2013-07-04 10:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys

2014-01-06 16:46 - 2013-02-27 06:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe

2014-01-06 16:46 - 2013-02-27 05:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll

2014-01-06 16:46 - 2013-02-15 06:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll

2014-01-06 16:46 - 2013-02-15 06:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll

2014-01-06 16:46 - 2013-02-15 06:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll

2014-01-06 16:46 - 2013-02-15 04:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll

2014-01-06 16:46 - 2013-02-15 04:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll

2014-01-06 16:46 - 2013-02-15 03:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll

2014-01-06 16:46 - 2012-12-07 13:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll

2014-01-06 16:46 - 2012-12-07 13:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll

2014-01-06 16:46 - 2012-12-07 12:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll

2014-01-06 16:46 - 2012-12-07 12:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll

2014-01-06 16:46 - 2012-12-07 11:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs

2014-01-06 16:46 - 2012-12-07 11:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs

2014-01-06 16:46 - 2012-12-07 11:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs

2014-01-06 16:46 - 2012-12-07 11:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs

2014-01-06 16:46 - 2012-12-07 11:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs

2014-01-06 16:46 - 2012-12-07 11:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs

2014-01-06 16:46 - 2012-12-07 11:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs

2014-01-06 16:46 - 2012-12-07 11:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs

2014-01-06 16:46 - 2012-12-07 10:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs

2014-01-06 16:46 - 2012-11-29 23:17 - 00420064 _____ C:\Windows\SysWOW64\locale.nls

2014-01-06 16:46 - 2012-11-29 23:15 - 00420064 _____ C:\Windows\system32\locale.nls

2014-01-06 16:46 - 2012-11-01 05:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll

2014-01-06 16:46 - 2012-11-01 05:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll

2014-01-06 16:46 - 2012-11-01 04:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll

2014-01-06 16:46 - 2012-11-01 04:47 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll

2014-01-06 16:46 - 2012-10-09 18:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll

2014-01-06 16:46 - 2012-10-09 18:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll

2014-01-06 16:46 - 2012-10-09 17:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll

2014-01-06 16:46 - 2012-10-09 17:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll

2014-01-06 16:46 - 2012-10-03 17:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll

2014-01-06 16:46 - 2012-10-03 17:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll

2014-01-06 16:46 - 2012-10-03 17:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll

2014-01-06 16:46 - 2012-10-03 17:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll

2014-01-06 16:46 - 2012-10-03 17:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll

2014-01-06 16:46 - 2012-10-03 17:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll

2014-01-06 16:46 - 2012-10-03 16:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll

2014-01-06 16:46 - 2012-10-03 16:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll

2014-01-06 16:46 - 2012-10-03 16:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll

2014-01-06 16:46 - 2012-10-03 16:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys

2014-01-06 16:46 - 2012-08-21 21:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe

2014-01-06 16:46 - 2012-04-07 12:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll

2014-01-06 16:46 - 2012-04-07 11:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll

2014-01-06 16:46 - 2012-01-13 07:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll

2014-01-06 16:46 - 2012-01-04 10:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll

2014-01-06 16:46 - 2012-01-04 08:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll

2014-01-06 16:46 - 2011-02-05 17:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi

2014-01-06 16:46 - 2011-02-05 17:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll

2014-01-06 16:46 - 2011-02-05 17:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll

2014-01-06 16:46 - 2011-02-05 17:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll

2014-01-06 16:46 - 2011-02-05 17:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe

2014-01-06 16:46 - 2011-02-05 17:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi

2014-01-06 16:46 - 2011-02-05 17:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe

2014-01-06 16:46 - 2010-06-26 03:55 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll

2014-01-06 16:46 - 2010-06-26 03:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll

2014-01-06 16:45 - 2013-10-30 02:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll

2014-01-06 16:45 - 2013-10-30 02:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll

2014-01-06 16:45 - 2013-10-30 01:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys

2014-01-06 16:45 - 2013-10-19 02:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll

2014-01-06 16:45 - 2013-10-19 01:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll

2014-01-06 16:45 - 2013-10-04 02:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys

2014-01-06 16:45 - 2013-10-04 01:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys

2014-01-06 16:45 - 2013-09-28 01:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys

2014-01-06 16:45 - 2013-08-05 02:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys

2014-01-06 16:45 - 2013-07-25 09:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL

2014-01-06 16:45 - 2013-07-25 08:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL

2014-01-06 16:45 - 2013-07-09 05:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll

2014-01-06 16:45 - 2013-07-09 04:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll

2014-01-06 16:45 - 2013-07-04 12:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll

2014-01-06 16:45 - 2013-07-04 11:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll

2014-01-06 16:45 - 2013-07-03 04:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys

2014-01-06 16:45 - 2013-07-03 04:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys

2014-01-06 16:45 - 2013-06-25 22:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys

2014-01-06 16:45 - 2013-06-15 04:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys

2014-01-06 16:45 - 2013-06-06 05:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll

2014-01-06 16:45 - 2013-06-06 05:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll

2014-01-06 16:45 - 2013-06-06 05:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll

2014-01-06 16:45 - 2013-06-06 05:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll

2014-01-06 16:45 - 2013-06-06 04:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll

2014-01-06 16:45 - 2013-06-06 04:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll

2014-01-06 16:45 - 2013-06-06 04:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll

2014-01-06 16:45 - 2013-06-06 03:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll

2014-01-06 16:45 - 2013-06-06 03:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll

2014-01-06 16:45 - 2013-06-06 03:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll

2014-01-06 16:45 - 2013-06-04 06:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll

2014-01-06 16:45 - 2013-06-04 04:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll

2014-01-06 16:45 - 2013-05-10 05:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll

2014-01-06 16:45 - 2013-05-10 03:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll

2014-01-06 16:45 - 2013-04-26 05:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll

2014-01-06 16:45 - 2013-04-26 04:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll

2014-01-06 16:45 - 2013-04-12 14:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys

2014-01-06 16:45 - 2013-03-19 05:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll

2014-01-06 16:45 - 2013-03-19 05:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll

2014-01-06 16:45 - 2013-02-12 04:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys

2014-01-06 16:45 - 2012-11-28 22:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys

2014-01-06 16:45 - 2012-11-28 22:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll

2014-01-06 16:45 - 2012-11-28 22:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf

2014-01-06 16:45 - 2012-11-22 05:44 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll

2014-01-06 16:45 - 2012-11-22 04:45 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll

2014-01-06 16:45 - 2012-11-02 05:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll

2014-01-06 16:45 - 2012-11-02 05:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll

2014-01-06 16:45 - 2012-09-25 22:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll

2014-01-06 16:45 - 2012-09-25 22:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll

2014-01-06 16:45 - 2012-08-22 18:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys

2014-01-06 16:45 - 2012-08-11 00:56 - 00715776 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll

2014-01-06 16:45 - 2012-08-10 23:56 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll

2014-01-06 16:45 - 2012-07-04 20:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys

2014-01-06 16:45 - 2012-05-01 05:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll

2014-01-06 16:45 - 2012-04-28 03:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys

2014-01-06 16:45 - 2012-04-26 05:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll

2014-01-06 16:45 - 2012-04-26 05:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll

2014-01-06 16:45 - 2012-04-26 05:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe

2014-01-06 16:45 - 2012-03-17 07:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys

2014-01-06 16:45 - 2011-12-30 06:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl

2014-01-06 16:45 - 2011-12-30 05:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl

2014-01-06 16:45 - 2011-11-17 06:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll

2014-01-06 16:45 - 2011-11-17 05:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll

2014-01-06 16:45 - 2011-10-26 05:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll

2014-01-06 16:45 - 2011-10-26 05:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll

2014-01-06 16:45 - 2011-10-26 04:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll

2014-01-06 16:45 - 2011-10-26 04:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll

2014-01-06 16:45 - 2011-08-17 05:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll

2014-01-06 16:45 - 2011-08-17 05:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax

2014-01-06 16:45 - 2011-08-17 04:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll

2014-01-06 16:45 - 2011-08-17 04:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax

2014-01-06 16:45 - 2011-07-09 02:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys

2014-01-06 16:45 - 2011-06-16 05:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll

2014-01-06 16:45 - 2011-06-16 04:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll

2014-01-06 16:45 - 2011-06-15 10:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll

2014-01-06 16:45 - 2011-06-15 10:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll

2014-01-06 16:45 - 2011-06-15 10:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll

2014-01-06 16:45 - 2011-06-15 10:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll

2014-01-06 16:45 - 2011-06-15 08:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll

2014-01-06 16:45 - 2011-06-15 08:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll

2014-01-06 16:45 - 2011-06-15 08:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll

2014-01-06 16:45 - 2011-06-15 08:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll

2014-01-06 16:45 - 2011-06-15 08:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll

2014-01-06 16:45 - 2011-05-04 05:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll

2014-01-06 16:45 - 2011-05-04 05:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll

Link to post
Share on other sites

2014-01-06 16:45 - 2011-05-04 05:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll

2014-01-06 16:45 - 2011-05-04 05:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll

2014-01-06 16:45 - 2011-05-04 05:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll

2014-01-06 16:45 - 2011-05-04 05:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll

2014-01-06 16:45 - 2011-05-04 05:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe

2014-01-06 16:45 - 2011-05-04 05:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe

2014-01-06 16:45 - 2011-05-04 05:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe

2014-01-06 16:45 - 2011-05-04 04:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll

2014-01-06 16:45 - 2011-05-04 04:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll

2014-01-06 16:45 - 2011-05-04 04:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll

2014-01-06 16:45 - 2011-05-04 04:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll

2014-01-06 16:45 - 2011-05-04 04:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll

2014-01-06 16:45 - 2011-05-04 04:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll

2014-01-06 16:45 - 2011-05-04 04:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe

2014-01-06 16:45 - 2011-05-04 04:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe

2014-01-06 16:45 - 2011-05-04 04:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe

2014-01-06 16:45 - 2011-04-29 03:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys

2014-01-06 16:45 - 2011-04-29 03:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys

2014-01-06 16:45 - 2011-04-29 03:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys

2014-01-06 16:45 - 2011-04-27 02:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys

2014-01-06 16:45 - 2011-04-27 02:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys

2014-01-06 16:45 - 2011-04-22 22:15 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys

2014-01-06 16:45 - 2011-04-09 06:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe

2014-01-06 16:45 - 2011-04-09 05:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe

2014-01-06 16:45 - 2011-03-11 06:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll

2014-01-06 16:45 - 2011-03-11 06:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll

2014-01-06 16:45 - 2011-03-11 05:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll

2014-01-06 16:45 - 2011-03-11 05:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll

2014-01-06 16:45 - 2011-03-03 06:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll

2014-01-06 16:45 - 2011-03-03 06:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll

2014-01-06 16:45 - 2011-03-03 06:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe

2014-01-06 16:45 - 2011-03-03 05:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll

2014-01-06 16:45 - 2011-03-03 05:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe

2014-01-06 16:45 - 2010-12-23 10:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll

2014-01-06 16:45 - 2010-12-23 10:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll

2014-01-06 16:45 - 2010-12-23 10:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax

2014-01-06 16:45 - 2010-12-23 05:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll

2014-01-06 16:45 - 2010-12-23 05:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll

2014-01-06 16:45 - 2010-12-23 05:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax

2014-01-06 16:44 - 2013-10-12 02:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx

2014-01-06 16:44 - 2013-10-12 02:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll

2014-01-06 16:44 - 2013-10-12 02:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll

2014-01-06 16:44 - 2013-10-12 02:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL

2014-01-06 16:44 - 2013-10-12 02:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL

2014-01-06 16:44 - 2013-10-12 02:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx

2014-01-06 16:44 - 2013-10-12 02:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll

2014-01-06 16:44 - 2013-10-12 02:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll

2014-01-06 16:44 - 2013-10-12 02:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL

2014-01-06 16:44 - 2013-10-12 01:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe

2014-01-06 16:44 - 2013-10-12 01:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe

2014-01-06 16:44 - 2013-10-12 01:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe

2014-01-06 16:44 - 2013-10-12 01:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe

2014-01-06 16:44 - 2013-10-03 02:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll

2014-01-06 16:44 - 2013-10-03 02:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll

2014-01-06 16:44 - 2013-07-20 10:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll

2014-01-06 16:44 - 2013-07-20 10:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll

2014-01-06 16:44 - 2013-05-13 05:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll

2014-01-06 16:44 - 2013-05-13 03:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe

2014-01-06 16:44 - 2013-05-13 03:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe

2014-01-06 16:44 - 2013-05-13 03:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll

2014-01-06 16:44 - 2013-01-24 06:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys

2014-01-06 16:44 - 2013-01-03 06:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS

2014-01-06 16:44 - 2012-08-22 18:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys

2014-01-06 16:44 - 2012-07-04 22:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll

2014-01-06 16:44 - 2012-07-04 22:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll

2014-01-06 16:44 - 2012-07-04 22:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll

2014-01-06 16:44 - 2012-07-04 21:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll

2014-01-06 16:44 - 2012-07-04 21:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll

2014-01-06 16:44 - 2012-06-06 06:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll

2014-01-06 16:44 - 2012-06-06 05:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll

2014-01-06 16:44 - 2012-05-14 05:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll

2014-01-06 16:44 - 2012-05-05 08:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll

2014-01-06 16:44 - 2012-05-05 07:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll

2014-01-06 16:44 - 2011-12-16 08:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll

2014-01-06 16:44 - 2011-12-16 07:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll

2014-01-06 16:44 - 2011-10-15 06:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll

2014-01-06 16:44 - 2011-10-15 05:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll

2014-01-06 16:44 - 2011-08-27 05:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll

2014-01-06 16:44 - 2011-08-27 05:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll

2014-01-06 16:44 - 2011-08-27 04:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll

2014-01-06 16:44 - 2011-08-27 04:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll

2014-01-06 16:44 - 2011-05-24 11:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll

2014-01-06 16:44 - 2011-05-24 10:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll

2014-01-06 16:44 - 2011-05-24 10:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll

2014-01-06 16:44 - 2011-05-24 10:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll

2014-01-06 16:44 - 2011-05-24 10:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe

2014-01-06 16:44 - 2011-05-03 05:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll

2014-01-06 16:44 - 2011-05-03 04:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll

2014-01-06 16:44 - 2011-02-18 10:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe

2014-01-06 16:44 - 2011-02-18 05:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe

2014-01-06 16:44 - 2011-02-12 11:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe

2014-01-06 16:43 - 2013-08-28 01:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll

2014-01-06 16:43 - 2013-08-01 12:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys

2014-01-06 16:43 - 2013-04-10 06:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys

2014-01-06 16:43 - 2011-02-23 04:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys

2014-01-06 16:43 - 2011-02-03 11:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll

2014-01-06 16:42 - 2012-02-17 06:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll

2014-01-06 16:42 - 2012-02-17 05:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll

2014-01-06 16:42 - 2012-02-17 04:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys

2014-01-06 16:42 - 2011-11-19 14:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll

2014-01-06 16:42 - 2011-11-19 14:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 ____D C:\Users\Dave\AppData\Roaming\ATI

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 ____D C:\Users\Dave\AppData\Local\ATI

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 ____D C:\ProgramData\ATI

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 _____ C:\Windows\ativpsrm.bin

2014-01-06 16:39 - 2014-01-06 16:39 - 00061173 _____ C:\Windows\SysWOW64\CCCInstall_201401061639508058.log

2014-01-06 16:39 - 2014-01-06 16:39 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies

2014-01-06 16:38 - 2014-01-06 17:45 - 00765280 _____ C:\Windows\SysWOW64\PerfStringBackup.INI

2014-01-06 16:34 - 2014-01-06 16:37 - 212753896 _____ (Advanced Micro Devices, Inc.) C:\Users\Dave\Downloads\13-12_win7_win8_64_dd_ccc_whql.exe

2014-01-06 16:31 - 2014-01-06 16:31 - 00002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk

2014-01-06 16:30 - 2014-01-06 20:11 - 00000890 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2014-01-06 16:30 - 2014-01-06 19:42 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2014-01-06 16:30 - 2014-01-06 16:37 - 00003890 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

2014-01-06 16:30 - 2014-01-06 16:37 - 00003638 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

2014-01-06 16:27 - 2012-06-02 22:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll

2014-01-06 16:27 - 2012-06-02 22:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll

2014-01-06 16:27 - 2012-06-02 22:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe

2014-01-06 16:27 - 2012-06-02 22:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll

2014-01-06 16:27 - 2012-06-02 22:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll

2014-01-06 16:27 - 2012-06-02 22:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll

2014-01-06 16:27 - 2012-06-02 22:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll

2014-01-06 16:27 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll

2014-01-06 16:27 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\ProgramData\AMD

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files\AMD

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files (x86)\ATI Technologies

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files (x86)\AMD AVT

2014-01-06 15:44 - 2014-01-06 16:39 - 00000000 ____D C:\ProgramData\Package Cache

2014-01-06 15:43 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files\ATI Technologies

2014-01-06 15:43 - 2014-01-06 15:43 - 00000000 ____D C:\Program Files\ATI

2014-01-06 15:43 - 2014-01-06 15:43 - 00000000 ____D C:\AMD

2014-01-06 15:31 - 2014-01-06 15:32 - 00000000 ____D C:\Users\Dave\AppData\Local\Google

2014-01-06 15:31 - 2014-01-06 15:32 - 00000000 ____D C:\Program Files (x86)\Google

2014-01-06 15:29 - 2014-01-06 15:29 - 00000000 ____D C:\Users\Dave\AppData\Roaming\AsRamdisk

2014-01-06 15:27 - 2014-01-06 16:30 - 00000000 ____D C:\Users\Dave\AppData\Local\Deployment

2014-01-06 15:27 - 2014-01-06 16:30 - 00000000 ____D C:\Users\Dave\AppData\Local\Apps\2.0

 

==================== One Month Modified Files and Folders =======

 

2014-01-07 06:41 - 2009-07-14 05:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG

2014-01-07 06:41 - 2009-07-14 05:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template

2014-01-07 00:08 - 2014-01-06 23:05 - 00000000 ____D C:\ProgramData\Samsung

2014-01-07 00:08 - 2014-01-06 23:05 - 00000000 ____D C:\Program Files (x86)\Samsung Magician

2014-01-06 23:02 - 2014-01-06 23:02 - 00000000 ____D C:\ProgramData\Adobe

2014-01-06 23:02 - 2014-01-06 23:02 - 00000000 ____D C:\Program Files (x86)\Adobe

2014-01-06 23:00 - 2014-01-06 23:00 - 00000901 _____ C:\Users\Public\Desktop\CPUID ROG CPU-Z.lnk

2014-01-06 22:59 - 2014-01-06 22:59 - 00002072 _____ C:\Users\Dave\Desktop\ROG GameFirst II.lnk

2014-01-06 22:59 - 2014-01-06 22:59 - 00001363 _____ C:\Users\Dave\Desktop\ROG GameFirst II Features.lnk

2014-01-06 22:59 - 2014-01-06 22:49 - 00050504 _____ C:\Windows\Ascd_tmp.ini

2014-01-06 22:58 - 2014-01-06 22:58 - 00001952 _____ C:\Users\Public\Desktop\ROG RAMDisk 2.00.03.lnk

2014-01-06 22:54 - 2014-01-06 22:54 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf

2014-01-06 22:54 - 2014-01-06 22:52 - 00000000 ____D C:\Program Files (x86)\Intel

2014-01-06 22:52 - 2014-01-06 22:52 - 00000000 ____D C:\Windows\System32\Tasks\ASUS

2014-01-06 22:52 - 2014-01-06 22:52 - 00000000 ____D C:\Intel

2014-01-06 22:52 - 2014-01-06 22:49 - 00001769 _____ C:\Windows\Language_trs.ini

2014-01-06 22:51 - 2014-01-06 22:51 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll

2014-01-06 22:51 - 2014-01-06 22:51 - 00000000 ____D C:\Windows\Chipset

2014-01-06 22:50 - 2014-01-06 22:50 - 00000000 ____H C:\Windows\system32\Drivers\MsftWdf_user_01_11_00.Wdf

2014-01-06 22:50 - 2014-01-06 22:50 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf

2014-01-06 22:50 - 2009-07-14 05:32 - 00000000 ____D C:\Windows\system32\restore

2014-01-06 22:48 - 2014-01-07 06:42 - 00000000 ____D C:\Windows\Panther

2014-01-06 22:48 - 2014-01-06 22:48 - 00000020 ___SH C:\Users\Dave\ntuser.ini

2014-01-06 22:48 - 2014-01-06 22:48 - 00000000 __SHD C:\Recovery

2014-01-06 22:48 - 2014-01-06 22:48 - 00000000 ____D C:\Users\Dave\AppData\Local\VirtualStore

2014-01-06 22:48 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\system32\Recovery

2014-01-06 22:44 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\rescache

2014-01-06 22:42 - 2014-01-06 22:42 - 00001355 _____ C:\Windows\TSSysprep.log

2014-01-06 22:42 - 2011-04-12 08:28 - 00000000 ____D C:\Windows\CSC

2014-01-06 22:42 - 2009-07-14 04:46 - 00002790 _____ C:\Windows\DtcInstall.log

2014-01-06 22:42 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\system32\sysprep

2014-01-06 20:15 - 2014-01-06 20:15 - 00005902 _____ C:\Users\Dave\Downloads\FRST.txt

2014-01-06 20:15 - 2014-01-06 20:15 - 00000000 ____D C:\FRST

2014-01-06 20:15 - 2014-01-06 20:14 - 01931762 _____ (Farbar) C:\Users\Dave\Downloads\FRST64.exe

2014-01-06 20:11 - 2014-01-06 20:11 - 01233962 _____ C:\Users\Dave\Downloads\AdwCleaner (1).exe

2014-01-06 20:11 - 2014-01-06 19:04 - 00000000 ____D C:\Install

2014-01-06 20:11 - 2014-01-06 16:30 - 00000890 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2014-01-06 20:11 - 2009-07-14 05:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT

2014-01-06 20:11 - 2009-07-14 04:51 - 00028903 _____ C:\Windows\setupact.log

2014-01-06 20:10 - 2014-01-06 22:47 - 01741645 _____ C:\Windows\WindowsUpdate.log

2014-01-06 20:10 - 2009-07-14 04:45 - 00020864 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2014-01-06 20:10 - 2009-07-14 04:45 - 00020864 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2014-01-06 20:09 - 2014-01-06 20:08 - 00000000 ____D C:\AdwCleaner

2014-01-06 20:07 - 2014-01-06 20:07 - 01233962 _____ C:\Users\Dave\Downloads\AdwCleaner.exe

2014-01-06 19:51 - 2014-01-06 19:51 - 00688992 _____ (Swearware) C:\Users\Dave\Downloads\dds.com

2014-01-06 19:51 - 2014-01-06 19:51 - 00020516 _____ C:\Users\Dave\Desktop\dds.txt

2014-01-06 19:51 - 2014-01-06 19:51 - 00002019 _____ C:\Users\Dave\Desktop\attach.txt

2014-01-06 19:51 - 2014-01-06 19:50 - 00688992 ____R (Swearware) C:\Users\Dave\Downloads\dds.scr

2014-01-06 19:46 - 2009-07-14 05:13 - 00781694 _____ C:\Windows\system32\PerfStringBackup.INI

2014-01-06 19:45 - 2014-01-06 19:45 - 00754944 _____ C:\Users\Dave\Downloads\cc_setup.exe

2014-01-06 19:45 - 2014-01-06 19:45 - 00001053 _____ C:\Users\Dave\Desktop\Continue CCleaner Installation.lnk

2014-01-06 19:42 - 2014-01-06 16:30 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2014-01-06 19:40 - 2010-11-21 03:47 - 00007202 _____ C:\Windows\PFRO.log

2014-01-06 19:30 - 2014-01-06 19:30 - 00000830 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2014-01-06 19:30 - 2014-01-06 19:30 - 00000000 ____D C:\Users\Dave\AppData\Roaming\Malwarebytes

2014-01-06 19:30 - 2014-01-06 19:30 - 00000000 ____D C:\ProgramData\Malwarebytes

2014-01-06 19:26 - 2014-01-06 19:25 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\Dave\Downloads\mbam-setup-1.75.0.1300.exe

2014-01-06 19:16 - 2014-01-06 19:16 - 00000204 _____ C:\Users\Dave\Desktop\DayZ.url

2014-01-06 19:16 - 2014-01-06 19:16 - 00000000 ____D C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam

2014-01-06 19:04 - 2014-01-06 19:04 - 00000604 _____ C:\Users\Public\Desktop\Steam.lnk

2014-01-06 19:04 - 2014-01-06 19:04 - 00000000 ____D C:\dumps

2014-01-06 19:03 - 2014-01-06 19:03 - 00000000 ____D C:\Users\Dave\Downloads\Steam_TSV1QNOG

2014-01-06 18:58 - 2014-01-06 23:05 - 00058016 _____ C:\Users\Dave\AppData\Local\GDIPFONTCACHEV1.DAT

2014-01-06 18:58 - 2014-01-06 22:48 - 00000000 ___RD C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

2014-01-06 18:58 - 2014-01-06 22:48 - 00000000 ___RD C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

2014-01-06 18:58 - 2009-07-14 04:45 - 00275712 _____ C:\Windows\system32\FNTCACHE.DAT

2014-01-06 18:58 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\PolicyDefinitions

2014-01-06 18:41 - 2009-07-14 05:32 - 00000000 ____D C:\Program Files\Windows Defender

2014-01-06 18:41 - 2009-07-14 05:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender

2014-01-06 18:35 - 2009-07-14 03:20 - 00000000 ____D C:\Program Files\Common Files\System

2014-01-06 17:45 - 2014-01-06 16:38 - 00765280 _____ C:\Windows\SysWOW64\PerfStringBackup.INI

2014-01-06 17:19 - 2014-01-06 22:48 - 00001417 _____ C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

2014-01-06 17:19 - 2014-01-06 17:19 - 00000000 ____D C:\Users\Dave\AppData\Roaming\Adobe

2014-01-06 17:18 - 2014-01-06 17:15 - 00013655 _____ C:\Windows\IE11_main.log

2014-01-06 17:18 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK

2014-01-06 17:18 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR

2014-01-06 17:18 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\system32\zh-HK

2014-01-06 17:18 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\system32\tr-TR

2014-01-06 17:17 - 2014-01-06 17:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys

2014-01-06 17:17 - 2014-01-06 17:17 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat

2014-01-06 17:17 - 2014-01-06 17:17 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat

2014-01-06 17:17 - 2014-01-06 17:17 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec

2014-01-06 17:17 - 2014-01-06 17:17 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec

2014-01-06 17:17 - 2014-01-06 17:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx

2014-01-06 17:17 - 2014-01-06 17:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx

2014-01-06 17:17 - 2014-01-06 17:17 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe

2014-01-06 17:17 - 2014-01-06 17:17 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll

2014-01-06 17:17 - 2014-01-06 17:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe

2014-01-06 17:16 - 2014-01-06 17:16 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll

2014-01-06 17:16 - 2014-01-06 17:16 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll

2014-01-06 17:15 - 2014-01-06 17:15 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll

2014-01-06 17:15 - 2014-01-06 17:15 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll

2014-01-06 16:58 - 2011-04-12 08:28 - 00000000 ____D C:\Program Files\Windows Journal

2014-01-06 16:51 - 2014-01-06 16:51 - 00000000 ____D C:\Windows\system32\MRT

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 ____D C:\Users\Dave\AppData\Roaming\ATI

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 ____D C:\Users\Dave\AppData\Local\ATI

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 ____D C:\ProgramData\ATI

2014-01-06 16:40 - 2014-01-06 16:40 - 00000000 _____ C:\Windows\ativpsrm.bin

2014-01-06 16:39 - 2014-01-06 16:39 - 00061173 _____ C:\Windows\SysWOW64\CCCInstall_201401061639508058.log

2014-01-06 16:39 - 2014-01-06 16:39 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies

2014-01-06 16:39 - 2014-01-06 15:44 - 00000000 ____D C:\ProgramData\Package Cache

2014-01-06 16:37 - 2014-01-06 16:34 - 212753896 _____ (Advanced Micro Devices, Inc.) C:\Users\Dave\Downloads\13-12_win7_win8_64_dd_ccc_whql.exe

2014-01-06 16:37 - 2014-01-06 16:30 - 00003890 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

2014-01-06 16:37 - 2014-01-06 16:30 - 00003638 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

2014-01-06 16:31 - 2014-01-06 16:31 - 00002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk

2014-01-06 16:30 - 2014-01-06 15:27 - 00000000 ____D C:\Users\Dave\AppData\Local\Deployment

2014-01-06 16:30 - 2014-01-06 15:27 - 00000000 ____D C:\Users\Dave\AppData\Local\Apps\2.0

2014-01-06 16:26 - 2014-01-06 22:57 - 00000000 ____D C:\Program Files\Intel

2014-01-06 16:26 - 2014-01-06 22:48 - 00000000 ____D C:\Users\Dave

2014-01-06 16:26 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\servicing

2014-01-06 16:26 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\registration

2014-01-06 16:25 - 2014-01-06 23:00 - 00000000 ____D C:\Program Files\CPUID

2014-01-06 16:25 - 2014-01-06 22:59 - 00000000 ____D C:\Users\Dave\AppData\Local\cFos

2014-01-06 16:25 - 2014-01-06 22:59 - 00000000 ____D C:\ProgramData\cFos

2014-01-06 16:25 - 2014-01-06 22:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

2014-01-06 16:25 - 2014-01-06 22:50 - 00000000 ____D C:\Program Files\ASUS

2014-01-06 16:25 - 2014-01-06 22:50 - 00000000 ____D C:\Program Files (x86)\ASUS

2014-01-06 16:15 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\system32\NDF

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\ProgramData\AMD

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files\AMD

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files (x86)\ATI Technologies

2014-01-06 15:45 - 2014-01-06 15:45 - 00000000 ____D C:\Program Files (x86)\AMD AVT

2014-01-06 15:45 - 2014-01-06 15:43 - 00000000 ____D C:\Program Files\ATI Technologies

2014-01-06 15:43 - 2014-01-06 15:43 - 00000000 ____D C:\Program Files\ATI

2014-01-06 15:43 - 2014-01-06 15:43 - 00000000 ____D C:\AMD

2014-01-06 15:32 - 2014-01-06 15:31 - 00000000 ____D C:\Users\Dave\AppData\Local\Google

2014-01-06 15:32 - 2014-01-06 15:31 - 00000000 ____D C:\Program Files (x86)\Google

2014-01-06 15:29 - 2014-01-06 15:29 - 00000000 ____D C:\Users\Dave\AppData\Roaming\AsRamdisk

 

Some content of TEMP:

====================

C:\Users\Dave\AppData\Local\Temp\ICReinstall_cc_setup.exe

C:\Users\Dave\AppData\Local\Temp\Quarantine.exe

 

 

==================== Bamital & volsnap Check =================

 

C:\Windows\System32\winlogon.exe => MD5 is legit

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\SysWOW64\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\SysWOW64\explorer.exe => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\SysWOW64\svchost.exe => MD5 is legit

C:\Windows\System32\services.exe => MD5 is legit

C:\Windows\System32\User32.dll => MD5 is legit

C:\Windows\SysWOW64\User32.dll => MD5 is legit

C:\Windows\System32\userinit.exe => MD5 is legit

C:\Windows\SysWOW64\userinit.exe => MD5 is legit

C:\Windows\System32\rpcss.dll => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Link to post
Share on other sites

My bad :P

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-01-2014
Ran by Dave at 2014-01-06 20:15:38
Running from C:\Users\Dave\Downloads
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
AMD Accelerated Video Transcoding (Version: 13.20.100.31206 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Install Manager (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
AMD Media Foundation Decoders (Version: 1.0.81206.1620 - Advanced Micro Devices, Inc.) Hidden
AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CPUID ROG CPU-Z 1.65 (Version: 1.65 - CPUID, Inc.)
DayZ (x32 Version:  - Bohemia Interactive)
Google Chrome (x32 Version: 31.0.1650.63 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Intel® Network Connections 18.1.59.0 (Version: 18.1.59.0 - Intel)
Intel® Network Connections 18.1.59.0 (Version: 18.1.59.0 - Intel) Hidden
Intel® USB 3.0 eXtensible Host Controller Driver (x32 Version: 2.5.0.19 - Intel Corporation)
Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
ROG GameFirst II v8.03 (Version: 8.03 - cFos Software GmbH, Bonn)
ROG RAMDisk (x32 Version: 2.00.03 - ASUSTeK Computer Inc.)
Steam (x32 Version: 1.0.0.0 - Valve Corporation)
VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden
 
==================== Restore Points  =========================
 
06-01-2014 16:38:13 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
06-01-2014 16:39:30 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
06-01-2014 16:50:18 Windows Update
06-01-2014 17:15:48 Windows Update
06-01-2014 17:20:55 Windows Update
06-01-2014 17:21:19 Windows Update
06-01-2014 17:43:50 Windows Update
06-01-2014 17:51:12 Windows Update
06-01-2014 18:30:12 Windows Update
06-01-2014 18:36:43 Windows Update
06-01-2014 18:39:06 Windows Update
06-01-2014 18:42:53 Windows Update
06-01-2014 18:49:33 Windows Update
06-01-2014 18:54:25 Windows Update
06-01-2014 18:56:02 Windows Update
06-01-2014 18:56:56 Windows Update
06-01-2014 19:00:36 Windows Update
06-01-2014 19:04:42 Installed Steam
 
==================== Hosts content: ==========================
 
2009-07-14 02:34 - 2009-06-10 21:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (whitelisted) =============
 
Task: {28F55AFE-14D7-4647-9ADA-FFAB05BFD04C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-06] (Google Inc.)
Task: {CE229291-63CB-41D3-B5FD-5AEB145653B3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-06] (Google Inc.)
Task: {E438FD52-09D3-4EB6-AD93-C03959204EAA} - System32\Tasks\ASUS\i-Setup225057 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
==================== Loaded Modules (whitelisted) =============
 
2014-01-06 22:50 - 2014-01-06 20:11 - 00031232 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\PEbiosinterface32.dll
2014-01-06 22:50 - 2012-05-07 16:04 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\ATKEX.dll
2013-11-06 13:48 - 2013-11-06 21:48 - 00691200 _____ () C:\Install\SDL2.dll
2013-12-11 11:40 - 2013-12-11 19:40 - 01135016 _____ () C:\Install\bin\chromehtml.DLL
2013-11-06 13:48 - 2013-11-06 21:48 - 20625832 _____ () C:\Install\bin\libcef.dll
2013-06-14 15:49 - 2013-06-14 23:49 - 01100800 _____ () C:\Install\bin\avcodec-53.dll
2013-06-14 15:49 - 2013-06-14 23:49 - 00124416 _____ () C:\Install\bin\avutil-51.dll
2013-06-14 15:49 - 2013-06-14 23:49 - 00192000 _____ () C:\Install\bin\avformat-53.dll
2014-01-06 16:31 - 2013-12-04 02:47 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
2014-01-06 16:31 - 2013-12-04 02:47 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\libegl.dll
2014-01-06 16:31 - 2013-12-04 02:48 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll
2014-01-06 16:31 - 2013-12-04 02:48 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
2014-01-06 16:31 - 2013-12-04 02:47 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
 
==================== Safe Mode (whitelisted) ===================
 
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (01/06/2014 08:12:59 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:42:11 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:31:51 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:03:07 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:00:34 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:56:43 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:49:22 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:43:12 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:39:34 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:37:21 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
System errors:
=============
Error: (01/06/2014 07:38:41 PM) (Source: Service Control Manager) (User: )
Description: The Windows Update service did not shut down properly after receiving a preshutdown control.
 
Error: (01/06/2014 07:14:47 PM) (Source: Service Control Manager) (User: )
Description: The Steam Client Service service failed to start due to the following error: 
%%1053
 
Error: (01/06/2014 07:14:47 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
 
Error: (01/06/2014 06:48:12 PM) (Source: cdrom) (User: )
Description: The device, \Device\CdRom0, has a bad block.
 
Error: (01/06/2014 06:47:24 PM) (Source: volmgr) (User: )
Description: Crash dump initialization failed!
 
Error: (01/06/2014 06:41:24 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
cdrom
 
Error: (01/06/2014 06:37:45 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
cdrom
 
Error: (01/06/2014 06:35:29 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
cdrom
 
Error: (01/06/2014 06:29:20 PM) (Source: cdrom) (User: )
Description: The device, \Device\CdRom0, is not ready for access yet.
 
Error: (01/06/2014 06:29:20 PM) (Source: cdrom) (User: )
Description: The device, \Device\CdRom0, is not ready for access yet.
 
 
Microsoft Office Sessions:
=========================
Error: (01/06/2014 08:12:59 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:42:11 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:31:51 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:03:07 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 07:00:34 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:56:43 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:49:22 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:43:12 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:39:34 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/06/2014 06:37:21 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Link to post
Share on other sites

Download attached fixlist.txt file and save it to the Desktop, or the folder you saved FRST into.

NOTE. It's important that both FRST and fixlist.txt are in the same location or the fix will not work.

 

Run FRST and press the Fix button just once and wait.


The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

 

Next,

 

We still need to run an online AV scan to ensure there are no remnants of any infection left on your system that we may have missed. This scan is very thorough and well worth running, it can take several hours please be patient and let it complete:

 

Run Eset Online Scanner

 

**Note** You will need to use Internet explorer for this scan - Vista and win 7 right click on IE shortcut and run as admin

 

Go to Eset web page http://www.eset.com/us/online-scanner/ to run an online scan from ESET.

 

  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • click on the Run ESET Online Scanner button
  • Tick the box next to YES, I accept the Terms of Use.
    Click Start
  • When asked, allow the add/on to be installed
    Click Start
  • Make sure that the option Remove found threats is unticked
  • Click on Advanced Settings, ensure the options
  • Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
    Click Scan
  • wait for the virus definitions to be downloaded
  • Wait for the scan to finish

 

When the scan is complete

 

  • If no threats were found
  • put a checkmark in "Uninstall application on close"
  • close program
  • report to me that nothing was found

 

If threats were found

 

  • click on "list of threats found"
  • click on "export to text file" and save it as ESET SCAN and save to the desktop
  • Click on back
  • put a checkmark in "Uninstall application on close"
  • click on finish

 

close program

 

copy and paste the report in next reply

 

Next,

 

Download Security Check by screen317 from either of the following:

http://screen317.spywareinfoforum.org/SecurityCheck.exe or http://screen317.changelog.fr/SecurityCheck.exe

Save it to your Desktop. (If your security alerts either accept the alert, or turn the security off while Secuirity Check runs)

Double click SecurityCheck.exe (Vista or Windows 7 users right click and select "Run as Administrator") and follow the onscreen instructions inside of the black box. Press any key when asked.

A Notepad document should open automatically called checkup.txt; please post the contents of that document.

 

Let me see those logs, also tell me if any remaining issues or concerns...

 

Kevin..

 

 

 

fixlist.txt

Link to post
Share on other sites

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 05-01-2014

Ran by Dave at 2014-01-06 22:42:01 Run:2

Running from C:\FRST

Boot Mode: Normal

==============================================

 

Content of fixlist:

*****************

Start

MountPoints2: {ce014fc7-7723-11e3-b047-806e6f6e6963} - D:\.\Bin\ASSETUP.exe

C:\Users\Dave\AppData\Local\Temp\ICReinstall_cc_setup.exe

C:\Users\Dave\AppData\Local\Temp\Quarantine.exe

End

 

 

*****************

 

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ce014fc7-7723-11e3-b047-806e6f6e6963} => Key deleted successfully.

HKCR\CLSID\{ce014fc7-7723-11e3-b047-806e6f6e6963} => Key not found.

C:\Users\Dave\AppData\Local\Temp\ICReinstall_cc_setup.exe => Moved successfully.

C:\Users\Dave\AppData\Local\Temp\Quarantine.exe => Moved successfully.

 

==== End of Fixlog ====

Link to post
Share on other sites

 Results of screen317's Security Check version 0.99.78  

 Windows 7 Service Pack 1 x64 (UAC is enabled)  

 Internet Explorer 11  

``````````````Antivirus/Firewall Check:`````````````` 

 Windows Firewall Enabled!  

 Windows Firewall Disabled!  

 WMI entry may not exist for antivirus; attempting automatic update. 

`````````Anti-malware/Other Utilities Check:````````` 

 Malwarebytes Anti-Malware version 1.75.0.1300  

 Google Chrome 31.0.1650.63  

````````Process Check: objlist.exe by Laurent````````  

 Malwarebytes Anti-Malware mbamservice.exe  

 Malwarebytes Anti-Malware mbamgui.exe  

 ESET ESET Online Scanner OnlineScannerApp.exe  

 Malwarebytes' Anti-Malware mbamscheduler.exe   

`````````````````System Health check````````````````` 

 Total Fragmentation on Drive C: 4% 

````````````````````End of Log`````````````````````` 

 


C:\FRST\Quarantine\ICReinstall_cc_setup.exe a variant of Win32/InstallCore.ES application

C:\Users\Dave\AppData\Local\Temp\ICReinstall_prime95_setup.exe a variant of Win32/InstallCore.FJ application

C:\Users\Dave\Downloads\cc_setup.exe a variant of Win32/InstallCore.ES application

C:\Users\Dave\Downloads\prime95_setup.exe a variant of Win32/InstallCore.FJ application

 

As requested

 

Link to post
Share on other sites

Download OTM from either of the following links and save to your Desktop: (If your security alerts to OTM, either accept the alert or turn off security to allow OTM to run)

http://oldtimer.geekstogo.com/OTM.exe.
http://www.itxassociates.com/OT-Tools/OTM.com
http://www.itxassociates.com/OT-Tools/OTM.exe  

Double click OTM.exe to start the tool. Vista or Windows 7 users accepy UAC alert. Be aware all processes will be stopped during run, also Desktop will disappear, this will be put back on completion.... If your security alerts to OTM either, accept the alert or turn off security until OTM completes...

  • Copy the text from the code box belowbelow to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy). Ensure to start with and include the colon before Files :Files

    :FilesC:\Users\Dave\AppData\Local\Temp\ICReinstall_prime95_setup.exeC:\Users\Dave\Downloads\cc_setup.exeC:\Users\Dave\Downloads\prime95_setup.exe:Commands[EmptyTemp]
  • Return to OTMoveIt3, right click in the "Paste Instructions for Items to be Moved" window (under the yellow bar) and choose Paste.
  • Click the red btnmoveit.png button.
  • Copy everything in the Results window (under the green bar) to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTM


Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.

If the machine reboots, the Results log can be found here:

c:\_OTMoveIt\MovedFiles\mmddyyyy_hhmmss.log

Where mmddyyyy_hhmmss is the date of the tool run.

 

Next,

 

I do not see any evidence of an installed antivirus security program, if that is correct it should be corrected ASAP. D/L and install MSE from the following link:

 

http://www.microsoft.com/en-gb/download/details.aspx?id=5201

 

Post log from OTM, also let me know if there are any remaining issues or concerns...

 

Kevin...

Link to post
Share on other sites

The search.conduit.com popup is still active. Persistant little devel isn't it?

 

All processes killed

========== FILES ==========

C:\Users\Dave\AppData\Local\Temp\ICReinstall_prime95_setup.exe moved successfully.

C:\Users\Dave\Downloads\cc_setup.exe moved successfully.

C:\Users\Dave\Downloads\prime95_setup.exe moved successfully.

========== COMMANDS ==========

 

[EMPTYTEMP]

 

User: All Users

 

User: Dave

->Temp folder emptied: 128161610 bytes

->Temporary Internet Files folder emptied: 31681187 bytes

->Google Chrome cache emptied: 19900649 bytes

 

User: Default

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: Default User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: Public

 

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 0 bytes

%systemroot%\System32 .tmp files removed: 0 bytes

%systemroot%\System32 (64bit) .tmp files removed: 0 bytes

%systemroot%\System32\drivers .tmp files removed: 0 bytes

Windows Temp folder emptied: 83445042 bytes

%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 35602 bytes

%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33298 bytes

RecycleBin emptied: 3363 bytes

 

Total Files Cleaned = 251.00 mb

 

 

OTM by OldTimer - Version 3.1.21.0 log created on 01072014_101921

 

Files moved on Reboot...

C:\Users\Dave\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

C:\Users\Dave\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

 

Registry entries deleted on Reboot...
Link to post
Share on other sites

Aha it had lodged itself back into the web browser opening pages list I have removed it (again lol) and have reopened my browser several times without it showing. Awesome job mate thank you I would consider this closed and if it pops up again I will start another but thanks again

 

Dave

Link to post
Share on other sites

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.